summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSylvain Beucler <beuc@beuc.net>2021-11-13 12:10:11 +0100
committerSylvain Beucler <beuc@beuc.net>2021-11-13 12:10:11 +0100
commit2d130c8b57d7fa7df2d6dbf573391971306426c7 (patch)
tree9f463d7e39bdb79307ce1d6e7f20ccae696a261d
parent6f48b3ca8528f593e138c47be6a78047b487638a (diff)
CVE-2021-42374/busybox: precise impact
-rw-r--r--data/CVE/2021.list2
1 files changed, 1 insertions, 1 deletions
diff --git a/data/CVE/2021.list b/data/CVE/2021.list
index e198635401..472963d8ba 100644
--- a/data/CVE/2021.list
+++ b/data/CVE/2021.list
@@ -2825,7 +2825,7 @@ CVE-2021-42374
- busybox <unfixed> (unimportant; bug #999567)
[stretch] - busybox <not-affected> (Vulnerable code introduced later)
NOTE: https://jfrog.com/blog/unboxing-busybox-14-new-vulnerabilities-uncovered-by-claroty-and-jfrog/
- NOTE: Crash in CLI tool, no security impact
+ NOTE: Crash in CLI tool with information leak
NOTE: Introduced by https://git.busybox.net/busybox/commit/?id=3989e5adf454a3ab98412b249c2c9bd2a3175ae0 (1_27_0)
NOTE: https://git.busybox.net/busybox/commit/?id=04f052c56ded5ab6a904e3a264a73dc0412b2e78
CVE-2021-42373

© 2014-2024 Faster IT GmbH | imprint | privacy policy